255641
|
- |
|
virtualsystem
|
vs-news-system
|
PHP remote file inclusion vulnerability in show_news_inc.php in VirtualSystem VS-News-System 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the newsordner parame…
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255642
|
- |
|
virtualsystem
|
vs-news-system
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255643
|
- |
|
webspell
|
webspell
|
SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the showonly parameter to index.php, a dif…
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255644
|
- |
|
webspell
|
webspell
|
Successful exploitation e.g. allows retrieval of password hashes, but requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255645
|
- |
|
xfairguy
|
codeavalanche_news
|
SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.
|
NVD-CWE-Other
|
CVE-2007-1021
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255646
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1023
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255647
|
- |
|
virtualsystem
|
vs-link-partner
|
PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad, or possibly script_…
|
NVD-CWE-Other
|
CVE-2007-1025
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255648
|
- |
|
spoonlabs
|
vivvo_article_management_cms
|
Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.
|
CWE-22
Path Traversal
|
CVE-2007-1031
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255649
|
- |
|
xpression_news
|
xpression_news
|
Directory traversal vulnerability in archives.php in Xpression News (X-News) 1.0.1 allows remote attackers to include arbitrary files or obtain sensitive information via a .. (dot dot) in the xnews-t…
|
NVD-CWE-Other
|
CVE-2007-1040
|
2017-10-11 10:31 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255650
|
- |
|
sandh
|
news_rover
|
Multiple stack-based buffer overflows in S&H Computer Systems News Rover 12.1 Rev 1 allow remote attackers to execute arbitrary code via a .nzb file with a long (1) group or (2) subject string.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-1041
|
2017-10-11 10:31 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|